Re: [CentOS] New selinux-policy breaks logwatch emails?

2010-01-08 Thread James Rankin
By setting selinux to permissive, you've, in effect, turned it off. SElinux will still provide messages about infractions, but won't prevent things from running... i.e., it is no longer guarding your system. hth, ken Thanks for the reply; the fact that the error only occurs when Enforcing is

Re: [CentOS] New selinux-policy breaks logwatch emails?

2010-01-08 Thread James Rankin
That's interesting... Have you tried increasing the loglevel? It's a kernel option, unfortunately, and enabled with an audit=xx on the grub boot. It might give you more than you're seeing in the audit log. You may also want to try a relabel and manually check the context of all associated

Re: [CentOS] selinux violation does not get logged

2010-01-08 Thread James Rankin
I got the same thing, which I think if from the selinux updates last night. My machine was on 5.4 since 5.4 was released. I will let you know if/when I figure out the solution. http://lists.centos.org/pipermail/centos/2010-January/088465.html ___

Re: [CentOS] selinux violation does not get logged

2010-01-08 Thread James Rankin
Here is the fix. Just found this: https://bugzilla.redhat.com/show_bug.cgi?id=553492 and also https://bugzilla.redhat.com/show_bug.cgi?id=553277 ___ CentOS mailing list CentOS@centos.org http://lists.centos.org/mailman/listinfo/centos

Re: [CentOS] New selinux-policy breaks logwatch emails?

2010-01-08 Thread James Rankin
For anyone else finding this: https://bugzilla.redhat.com/show_bug.cgi?id=553492 and also https://bugzilla.redhat.com/show_bug.cgi?id=553277 ___ CentOS mailing list CentOS@centos.org http://lists.centos.org/mailman/listinfo/centos